Cyber Security Manager

E.ON UK

Nottingham

Hybrid

GBP 60,000 - 80,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

26 days annual leave + bank holidays
Pension and bonus
Flexible benefits
Family-friendly policies

Job summary

A leading energy company is seeking a Cyber Security Manager to oversee IT security, manage risk assessments, and develop a robust Information Security Management System. You will work within a multi-supplier ecosystem, guiding security practices and compliance for critical frameworks. The ideal candidate will have experience in governance leadership, DevSecOps, and strong regulatory knowledge. This position offers flexible benefits, hybrid working policies, and a commitment to inclusivity.

Qualifications

  • Proven success delivering security audits and certifications such as ISO 27001.
  • Hands-on experience in establishing and operating an Information Security Management System (ISMS).
  • Experience working in complex multi-supplier environments.

Responsibilities

  • Own cyber security, IT risk, and controls ensuring governance and audit readiness.
  • Lead threat and risk assessments aligned to ISO 27005.
  • Develop and mature the ISMS aligned to ISO 27001 and emerging standards.

Skills

Cyber risk awareness
IT risk management
ISO 27001 knowledge
DevSecOps practices
Governance leadership
Penetration testing coordination
Engagement with C-suite
Regulatory landscape knowledge

Education

CISSP certification
CISM certification
ISO 27001 Lead Auditor

Job description

We’re looking for a Cyber Security Manager to be the cornerstone of IT security for npower Business Solutions (nBS), the Industrial & Commercial arm of E.ON UK.

Based in Nottingham or Solihull, this permanent role (FTC options considered) will sit at the heart of our transformation. You will establish and operate a robust Information Security Management System (ISMS), embed best practices across our evolving DevSecOps culture, and provide expert guidance on secure architecture, fraud prevention, and governance frameworks.

Operating within the E.ON Group cyber security framework, you will navigate a complex multi-supplier ecosystem and lead the security agenda as we transition from a traditional service model to a modern product and DevSecOps environment. This role combines governance leadership with hands-on technical expertise, advising stakeholders up to C-suite level.

Key Responsibilities
  • Own cyber security, IT risk, and controls for nBS, ensuring governance and audit readiness
  • Lead threat and risk assessments aligned to ISO 27005 and manage remediation plans
  • Develop and mature the ISMS aligned to ISO 27001, SEC, and emerging standards including ISO 42001 and CAF/CRA
  • Drive compliance across SEC, REC, PCI DSS, GDPR, Cyber Essentials and Cyber Assurance Framework
  • Support secure architecture, DevSecOps practices, and security integration across the SDLC
  • Manage third-party security posture across suppliers and partners
  • Coordinate penetration testing and oversee remediation of findings
  • Promote cyber risk awareness through engagement with engineering teams and the C-suite
  • Proven success delivering security audits and certifications (e.g., ISO 27001, SOC 2 Type II, PCI DSS, Cyber Essentials)
  • Strong knowledge of the UK energy regulatory landscape, particularly SEC and REC
  • Hands‑on experience establishing and operating an ISMS
  • Strong background in IT risk management and ISO 27005 assessments
  • Experience working in complex multi-supplier environments
  • Ability to engage and influence senior leadership and C-suite
  • Certifications: CISSP, CISM, ISO 27001 Lead Auditor/Implementer
  • Experience working in DevSecOps environments
  • Understanding of cyber resilience and data protection frameworks in energy markets
Why Join Us?
  • Sunday Times Best Place to Work 2025
  • 26 days annual leave + bank holidays, pension, bonus and flexible benefits
  • Hybrid and family-friendly policies
  • Inclusive employer recognised in the Inclusive Top 50 UK Employers

If you're ready to shape the cyber security backbone of a leading energy business, we’d love to hear from you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security and IT Manager
Cyber Security and IT Manager

EWI Recruitment • England

Hybrid
GBP 70,000 - 90,000
Flexible working arrangements
Opportunity for occasional travel
Information Security Technical Assurance Lead
Information Security Technical Assurance Lead

URENCO UK Ltd • City of Westminster

Hybrid
GBP 11,000 - 88,000
27 days annual leave
Generous bonus scheme
Pension contributions
+2
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Northern Powergrid • Sunderland

On-site
GBP 55,000 - 65,000
25 days holiday
15% Performance Bonus
Secuity Operations Lead
Secuity Operations Lead

Morson Talent • Glasgow

Hybrid
GBP 70,000 - 90,000
Cyber Security Analyst
Cyber Security Analyst

SmartestEnergy Limited • Ipswich

On-site
GBP 55,000 - 60,000
Flexible working
Commitment to diversity and inclusion
Cyber Risk Manager
Cyber Risk Manager

Iberdrola SA • Glasgow

Hybrid
GBP 66,000 - 82,000
36 days annual leave
Holiday purchase
Share Incentive Plan
+6
Secuity Operations Lead
Secuity Operations Lead

Morson Edge • Glasgow

Hybrid
GBP 70,000 - 100,000
Cyber Risk Manager
Cyber Risk Manager

iberdrola • Glasgow

Hybrid
GBP 66,000 - 82,000
36 days annual leave
Holiday purchase
Share Incentive Plan
Lead Cyber Security Engineer
Lead Cyber Security Engineer

Vital Energi • Darwen

On-site
GBP 70,000 - 90,000
Cyber Risk Manager
Cyber Risk Manager

Scottish Power Renewable UK Ltd • Glasgow

Hybrid
GBP 66,000 - 82,000
Private healthcare
Car allowance
Pension matching up to 10%
+1